US2002178373A1PendingUtilityA1

Computer virus rejection system and method

Priority: Apr 16, 2001Filed: Apr 16, 2001Published: Nov 28, 2002
Est. expiryApr 16, 2021(expired)· nominal 20-yr term from priority
G06F 21/566
41
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Access to the operating system of a computer by a computer virus carried by incoming message data is precluded by directing the incoming message data to a containment field device separate from and parallel to the operating system so as to quarantine the message data from the operating system, then diagnosing the quarantined message data for aberrant data indicative of the presence of a computer virus and, should aberrant data be detected, denying access to the operating system, thereby precluding access by the computer virus to the operating system. The malignant message data then is rejected and may be traced and then returned to the source of the message.

Claims

exact text as granted — not AI-modified
The embodiments of the invention in which an exclusive property or privilege is claimed are defined as follows:  
     
         1 . A computer virus rejection system for use in connection with a computer having an operating system, for precluding access to the operating system of the computer by a computer virus carried with an incoming message directed to the computer, the incoming message including incoming message data, the system comprising: 
 a containment field device separate from and parallel to the operating system of the computer;    a containment operator device for treating incoming message data so as to direct the incoming message data to the containment field device and maintain the incoming message data quarantined from the operating system;    a scanner for scanning the quarantined message data; and    a comparator for diagnosing the quarantined message data scanned by the scanner to detect any aberrant data contained within the quarantined message data, for rejecting any quarantined message data within which aberrant data is detected so as to preclude entry of the aberrant data into the operating system of the computer, and for admitting into the operating system of the computer any quarantined message data determined not to contain aberrant data.    
     
     
         2 . The computer virus rejection system of  claim 1  including a compactor for condensing the message data admitted into the operating system in order to reduce the amount of data needed to store essential information carried by the incoming message.  
     
     
         3 . The computer virus rejection system of  claim 1  wherein the operating system of the computer is configured for accepting data of a given polarity, the containment field device is configured for accepting data of a polarity opposite to the given polarity, and the containment operator device polarizes the incoming message data so as to provide the incoming message data with a polarity opposite to the given polarity.  
     
     
         4 . The computer virus rejection system of  claim 3  wherein the containment field device is located within the computer.  
     
     
         5 . The computer virus rejection system of  claim 3  wherein the containment field device comprises a separate component outside the computer.  
     
     
         6 . The computer virus rejection system of  claim 3  wherein the containment field device is located in a separate server associated with the computer.  
     
     
         7 . The computer virus rejection system of  claim 3  including a compactor for condensing the message data admitted into the operating system in order to reduce the amount of data needed to store essential information carried by the incoming message.  
     
     
         8 . A method for use in connection with a computer having an operating system, for precluding access to the operating system of the computer by a computer virus carried with incoming message data directed to the computer, the method comprising: 
 treating incoming message data so as to direct the incoming message data to a containment field device and maintain the incoming message data quarantined from the operating system of the computer;    diagnosing the quarantined message data to detect any aberrant data contained within the quarantined message data; and    rejecting any quarantined message data within which aberrant data is detected so as to preclude entry of the aberrant data into the operating system of the computer.    
     
     
         9 . The method of  claim 8  including admitting into the operating system of the computer any quarantined message data determined not to contain aberrant data.  
     
     
         10 . The method of  claim 9  including condensing the message data admitted into the operating system in order to reduce the amount of data needed to store essential information carried by the incoming message.  
     
     
         11 . The method of  claim 8  wherein the operating system of the computer is configured for accepting data of a given polarity, the containment field device is configured for accepting data of a polarity opposite to the given polarity, and the step of treating the incoming message data includes polarizing the incoming message data so as to provide the incoming message data with a polarity opposite to the given polarity.  
     
     
         12 . The method of  claim 11  including subsequently providing the quarantined message data determined not to contain aberrant data with a polarity the same as the given polarity, and then admitting into the operating system of the computer any quarantined message data determined not to contain aberrant data.  
     
     
         13 . The method of  claim 8  including subsequently deleting the quarantined message data within which aberrant data is detected.  
     
     
         14 . The method of  claim 8  wherein the incoming message emanates from a message source and the method includes tracing the message data to the message source.  
     
     
         15 . The method of  claim 8  wherein the incoming message emanates from a message source and the method includes subsequently returning to the message source the quarantined message data within which aberrant data is detected.

Join the waitlist — get patent alerts

Track US2002178373A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.